Simulation based Evaluation of a Code Diversification Strategy

نویسندگان

  • Brady Tello
  • Michael L. Winterrose
  • George K. Baah
  • Michael Zhivich
چکیده

Periodic randomization of a computer program’s binary code is an attractive technique for defending against several classes of advanced threats. In this paper we describe a model of attacker-defender interaction in which the defender employs such a technique against an attacker who is actively constructing an exploit using Return Oriented Programming (ROP). In order to successfully build a working exploit, the attacker must guess the locations of several small chunks of program code (i.e., gadgets) in the defended program’s memory space. As the attacker continually guesses, the defender periodically rotates to a newly randomized variant of the program, effectively negating any gains the attacker made since the last rotation. Although randomization makes the attacker’s task more difficult, it also incurs a cost to the defender. As such, the defender’s goal is to find an acceptable balance between utility degradation (cost) and security (benefit). One way to measure these two competing factors is the total task latency introduced by both the attacker and any defensive measures taken to thwart him. We simulated a number of diversity strategies under various threat scenarios and present the measured impact on the defender’s task.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Desigining strategic management model for primary prevention of addiction a cultural approach, Diversification

This study aimed to design a strategic management model for primary prevention of addiction with a cultural approach. From this point of view, using a consecutive exploratory (qualitative-quantitative) design, it has attempted to evaluate the factors and finally formulate a strategic management model of primary prevention of addiction with a cultural approach. Thus, in the Delphi phase with the...

متن کامل

Simulation of the BNCT of Brain Tumors Using MCNP Code: Beam Designing and Dose Evaluation

Introduction BNCT is an effective method to destroy brain tumoral cells while sparing the healthy tissues. The recommended flux for epithermal neutrons is 109 n/cm2s, which has the most effectiveness on deep-seated tumors. In this paper, it is indicated that using D-T neutron source and optimizing of Beam Shaping Assembly (BSA) leads to treating brain tumors in a reasonable time where all IAEA ...

متن کامل

The Relationship between Diversification Strategy, Capital Structure and Profitability in Companies Listed in the Stock Exchange by Combining the Data Line and VAR Methods

The present study investigates the relationship between diversification strategy, capital structure and profitability in companies listed in the stock exchange through a combination of data panel and VAR methods. The present research was conducted for companies admitted to the Tehran Stock Exchange from 1387 to 1395 and 78 companies were selected as case study. Stationary and static tests were ...

متن کامل

ANN-DEA Approach of Corporate Diversification and Efficiency in Bursa Malaysia

There is little consensus on the corporate diversification-efficiency relationship in the diversification literature. According to the corporate diversification, firms have a tendency to get more market share with diversifying in the local segment or in the international market. Theoretically, a contradictory exists between the profitable strategy and the value reducing strategy in the diversif...

متن کامل

Design and Simulation of Photoneutron Source by MCNPX Monte Carlo Code for Boron Neutron Capture Therapy

Introduction Electron linear accelerator (LINAC) can be used for neutron production in Boron Neutron Capture Therapy (BNCT). BNCT is an external radiotherapeutic method for the treatment of some cancers. In this study, Varian 2300 C/D LINAC was simulated as an electron accelerator-based photoneutron source to provide a suitable neutron flux for BNCT. Materials and Methods Photoneutron sources w...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2015